CVE-2017-13983

CRITICAL

HPE BSM Platform APM System Health 9.26, 9.30, 9.40 - Authentication Bypass

Title source: llm
STIX 2.1

Description

An authentication vulnerability in HPE BSM Platform Application Performance Management System Health product versions 9.26, 9.30 and 9.40, allows remote users to bypass authentication.

References (3)

Core 3
Core References
Vendor Advisory x_refsource_confirm
https://softwaresupport.hpe.com/km/KM02942065
Various Sources third-party-advisory x_refsource_auscert
https://www.auscert.org.au/bulletins/52154
Third Party Advisory x_refsource_misc
http://www.zerodayinitiative.com/advisories/ZDI-17-722/

Scores

CVSS v3 9.8
EPSS 0.1492
EPSS Percentile 94.6%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-287
Status published
Products (3)
hp/bsm_platform_application_performance_management_system_health 9.26
hp/bsm_platform_application_performance_management_system_health 9.30
hp/bsm_platform_application_performance_management_system_health 9.40
Published Sep 30, 2017
Tracked Since Feb 18, 2026